× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 7406a572e2e1678b7e3f402716ff283fab4248afc298296999a2f4c81eed39e3
File name: epostagonder.exe
Detection ratio: 0 / 43
Analysis date: 2012-01-16 21:36:32 UTC ( 5 years, 5 months ago )
Antivirus Result Update
AhnLab-V3 20120116
AntiVir 20120116
Antiy-AVL 20120116
Avast 20120116
AVG 20120116
BitDefender 20120116
ByteHero 20120116
CAT-QuickHeal 20120116
ClamAV 20120116
Commtouch 20120116
Comodo 20120116
DrWeb 20120116
Emsisoft 20120116
eSafe 20120115
eTrust-Vet 20120116
F-Prot 20120116
F-Secure 20120116
Fortinet 20120115
GData 20120116
Ikarus 20120116
Jiangmin 20120116
K7AntiVirus 20120113
Kaspersky 20120116
McAfee 20120116
McAfee-GW-Edition 20120116
Microsoft 20120116
NOD32 20120116
Norman 20120116
nProtect 20120116
Panda 20120116
PCTools 20120116
Prevx 20120116
Rising 20120116
Sophos 20120116
SUPERAntiSpyware 20120114
Symantec 20120116
TheHacker 20120116
TrendMicro 20120116
TrendMicro-HouseCall 20120116
VBA32 20120116
VIPRE 20120116
ViRobot 20120116
VirusBuster 20120116
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright (c) 2011

Product epostagonder
Original name epostagonder.exe
Internal name epostagonder.exe
File version 1.0.0.0
Description epostagonder
PE header basic information
Number of sections 3
PE sections
PE imports
_CorExeMain
ExifTool file metadata
SubsystemVersion
4.0

InitializedDataSize
49152

ImageVersion
0.0

ProductName
epostagonder

FileVersionNumber
1.0.0.0

UninitializedDataSize
0

LanguageCode
Neutral

FileFlagsMask
0x003f

CharacterSet
Unicode

LinkerVersion
8.0

FileOS
Win32

MIMEType
application/octet-stream

Subsystem
Windows GUI

FileVersion
1.0.0.0

TimeStamp
2012:01:16 00:16:45+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
epostagonder.exe

ProductVersion
1.0.0.0

FileDescription
epostagonder

OSVersion
4.0

OriginalFilename
epostagonder.exe

LegalCopyright
Copyright 2011

MachineType
Intel 386 or later, and compatibles

CodeSize
2219008

FileSubtype
0

ProductVersionNumber
1.0.0.0

EntryPoint
0x21fa4e

ObjectFileType
Executable application

AssemblyVersion
1.0.0.0

File identification
MD5 d3bc78f31dbf61e189f89ab2085777d9
SHA1 2cc3613835479ce53889ce1d0e701fd08ec002f4
SHA256 7406a572e2e1678b7e3f402716ff283fab4248afc298296999a2f4c81eed39e3
ssdeep
24576:TS0WGg/MwDTWIfgfa+VvkqQZEFIHHKXfAYvitpNqH9tADUGpNgDsArdA:eb/lDmfa+VvkqBIHHwAYvit3asAr

File size 2.2 MB ( 2268672 bytes )
File type Win32 EXE
Magic literal
MS-DOS executable PE for MS Windows (GUI) Intel 80386 32-bit Mono/.Net assembly

TrID Generic CIL Executable (.NET, Mono, etc.) (68.8%)
Windows Screen Saver (12.3%)
Win32 Executable Generic (8.0%)
Win32 Dynamic Link Library (generic) (7.1%)
Generic Win/DOS Executable (1.8%)
VirusTotal metadata
First submission 2012-01-16 21:36:39 UTC ( 5 years, 5 months ago )
Last submission 2012-01-16 21:36:32 UTC ( 5 years, 5 months ago )
File names epostagonder.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!